CVE-2019-20446
- EPSS 1.33%
- Veröffentlicht 02.02.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:38:30
In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processing. The attacker constructs pattern elements so that the number of final rendered objects grows expon...
CVE-2019-14888
- EPSS 0.24%
- Veröffentlicht 23.01.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:36
A vulnerability was found in the Undertow HTTP server in versions before 2.0.28.SP1 when listening on HTTPS. An attacker can target the HTTPS port to carry out a Denial Of Service (DOS) to make the service unavailable on SSL.
CVE-2019-20386
- EPSS 0.15%
- Veröffentlicht 21.01.2020 06:15:11
- Zuletzt bearbeitet 09.06.2025 16:15:30
An issue was discovered in button_open in login/logind-button.c in systemd before 243. When executing the udevadm trigger command, a memory leak may occur.
CVE-2019-18282
- EPSS 0.66%
- Veröffentlicht 16.01.2020 16:15:16
- Zuletzt bearbeitet 21.11.2024 04:32:58
The flow_dissector feature in the Linux kernel 4.3 through 5.x before 5.3.10 has a device tracking vulnerability, aka CID-55667441c84f. This occurs because the auto flowlabel of a UDP IPv6 packet relies on a 32-bit hashrnd value as a secret, and beca...
CVE-2020-2686
- EPSS 0.64%
- Veröffentlicht 15.01.2020 17:15:26
- Zuletzt bearbeitet 21.11.2024 05:25:59
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple prot...
CVE-2020-2694
- EPSS 0.32%
- Veröffentlicht 15.01.2020 17:15:26
- Zuletzt bearbeitet 21.11.2024 05:26:01
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.18 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via mu...
CVE-2020-2679
- EPSS 0.36%
- Veröffentlicht 15.01.2020 17:15:25
- Zuletzt bearbeitet 21.11.2024 05:25:58
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...
CVE-2020-2654
- EPSS 0.23%
- Veröffentlicht 15.01.2020 17:15:24
- Zuletzt bearbeitet 21.11.2024 05:25:54
Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access v...
CVE-2020-2659
- EPSS 0.28%
- Veröffentlicht 15.01.2020 17:15:24
- Zuletzt bearbeitet 21.11.2024 05:25:55
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241 and 8u231; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated at...
CVE-2020-2660
- EPSS 0.36%
- Veröffentlicht 15.01.2020 17:15:24
- Zuletzt bearbeitet 21.11.2024 05:25:55
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.7.28 and prior and 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network ac...